TLDR: A recent Gartner report indicates that the rapid adoption of generative AI (GenAI) is profoundly reshaping the cybersecurity landscape. Key findings reveal a 54% increase in overall identity breaches, underscoring the expanded attack surface and the critical need for enhanced identity and access management (IAM) strategies. The report also highlights a growing trend towards tactical AI implementations, alongside a prediction that 30% of GenAI projects will be abandoned by the end of 2025 due to various implementation hurdles.
The pervasive integration of generative AI (GenAI) into enterprise operations is creating a dual impact on cybersecurity, presenting both advanced capabilities and significant new vulnerabilities, according to a recent Gartner report. A notable finding from Gartner’s 2024 IAM Leadership Survey indicates that 54% of organizations have experienced an increase in overall identity breaches. This surge is directly linked to the growing use of GenAI, automation, and cloud technologies, which collectively lead to a prolific increase in machine accounts and credentials, thereby broadening the potential attack surface.
Security and risk management (SRM) leaders are grappling with a more complex threat landscape, characterized by sophisticated attack vectors such as deepfakes and AI-powered phishing. Gartner emphasizes that defending against these evolving threats necessitates a coordinated, enterprise-wide approach to cybersecurity. A critical recommendation is the implementation of robust identity and access management (IAM) strategies to safeguard machine identities, including service accounts, automation tools, and AI agents, which are increasingly targeted in attacks leading to unauthorized access and data breaches.
Despite the initial hype surrounding GenAI in 2023, organizations are now adopting a more tactical approach to AI implementation. SRM leaders are shifting their focus towards initiatives that can deliver demonstrable results, moving past the exploratory phase to more strategic integrations. Gartner anticipates that the hype around AI agents will peak in 2025, urging organizations to integrate AI into existing workflows to enhance cybersecurity rather than rushing to replace current methods entirely.
However, the path to successful GenAI adoption is not without its obstacles. Gartner predicts that at least 30% of GenAI projects currently in testing will be abandoned after the proof-of-concept phase by the end of 2025. The primary reasons cited for these failures include escalating costs, poor data quality, an unclear demonstration of business value, and inadequate risk controls. The typical investment for GenAI initiatives can range from $5 million to $20 million, with custom-built large language models (LLMs) incurring upfront costs of $8 million to $20 million and recurring annual costs of $11,000 to $21,000 per user.
Conversely, early adopters of GenAI have reported significant business improvements. A Gartner survey conducted between September and November 2023 revealed an average of 15.8% revenue increase, 15.2% cost savings, and 22.6% productivity improvement. Rita Sallam, Distinguished Vice President Analyst at Gartner, noted, “This data serves as a valuable reference point for assessing the business value derived from GenAI business model innovation.” She also highlighted the challenge in accurately estimating this value, as benefits can be highly specific to the company, use case, role, and workforce, often materializing over time.
Worldwide spending on AI is projected to reach nearly $1.5 trillion in 2025, a substantial increase from $987,904 in 2024, and is expected to exceed $2 trillion by 2026. This growth is driven by the integration of AI into products like smartphones and PCs, as well as significant investments in AI infrastructure. John-David Lovelock, Distinguished VP Analyst at Gartner, commented on the expanding AI investment landscape, noting increased investments in data centers with AI-optimized hardware and GPUs, and a broader participation from Chinese companies and new AI cloud providers, alongside venture capital funding.
Also Read:
- Generative AI’s Double-Edged Sword: Fueling Sophisticated Fraud While Empowering Defense
- Global AI Spending Projected to Reach $1.5 Trillion in 2025, Driven by Infrastructure and Product Integration
In conclusion, while GenAI promises transformative benefits, organizations must navigate its cybersecurity implications with robust strategies and a clear understanding of the investment and risk landscape to ensure successful and secure implementation.


